{"id":34902,"date":"2019-04-16T17:37:27","date_gmt":"2019-04-16T09:37:27","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=34902"},"modified":"2019-04-16T17:37:29","modified_gmt":"2019-04-16T09:37:29","slug":"cybercriminals-attack-cloud-server-honeypot-within-52-seconds-sophos","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2019\/04\/16\/cybercriminals-attack-cloud-server-honeypot-within-52-seconds-sophos\/","title":{"rendered":"Cybercriminals attack cloud server honeypot within 52 seconds \u2013 Sophos"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.sophos.com\/\"><strong>Sophos<\/strong><\/a><strong> announced the findings of its report, <\/strong><a href=\"https:\/\/www.sophos.com\/CloudHoneypotsReport\"><strong>Exposed: Cyberattacks on Cloud Honeypots<\/strong><\/a><strong>, which reveals that cybercriminals attacked one of the cloud server honeypots in the study within 52 seconds of the honeypot going live in Sao Paulo, Brazil. <\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">On average, the cloud servers were hit by 13 attempted attacks per minute, per honeypot. The honeypots were set up in 10 of the most popular Amazon Web Services (AWS) data centers in the world, including California, Frankfurt, Ireland, London, Mumbai, Ohio, Paris, Sao Paulo, Singapore, and Sydney over a 30-day period. A honeypot is a system intended to mimic likely targets of cyberattackers, so that security researchers can monitor cybercriminal behaviors. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In the study, more than five million attacks were attempted on the global network of honeypots in the 30-day period, demonstrating how cybercriminals are automatically scanning for weak open cloud buckets. If attackers are successful at gaining entry, organizations could be vulnerable to data breaches. Cybercriminals also use breached cloud servers as pivot points to gain access onto other servers or networks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cThe Sophos report, <a href=\"https:\/\/www.sophos.com\/CloudHoneypotsReport\">Exposed: Cyberattacks\non Cloud Honeypots<\/a>, identifies the threats organizations migrating to hybrid\nand all-cloud platforms face. The aggressive speed and scale of attacks on the\nhoneypots shows how relentlessly persistent cybercriminals are and indicates\nthey are using botnets to target an organization\u2019s cloud platforms. In some\ninstances, it may be a human attacker, but regardless, companies need a\nsecurity strategy to protect what they are putting into the cloud,\u201d said Matthew\nBoddy, security specialist, Sophos. \u201cThe issue of visibility and security in cloud\nplatforms is a big business challenge, and with increased migration to the\ncloud, we see this continuing.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Visibility\ninto Weaknesses<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Continuous visibility of\npublic cloud infrastructure is vital for businesses to ensure compliance and to\nknow what to protect. However, multiple development teams within an\norganization and an ever-changing, auto-scaling environment make this difficult\nfor IT security. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Sophos is addressing security weaknesses in public clouds\nwith the launch of <a href=\"https:\/\/www.sophos.com\/cloud-optix\">Sophos\nCloud Optix<\/a>, which\nleverages artificial intelligence (AI) to highlight and mitigate threat exposure\nin cloud infrastructures. Sophos Cloud Optix is an agentless solution that provides intelligent\ncloud visibility, automatic compliance regulation detection and threat response\nacross multiple cloud environments. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cInstead of inundating security teams with a\nmassive number of undifferentiated alerts, Sophos Cloud Optix significantly\nminimizes alert fatigue by identifying what is truly meaningful and actionable,\u201d said Ross\nMcKerchar, CISO, Sophos. \u201cIn addition, with visibility into cloud assets and workloads, IT\nsecurity can have a far more accurate picture of their security posture that\nallows them to prioritize and proactively remediate the issues flagged in Sophos\nCloud Optix.\u201d <\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Key features in Sophos Cloud Optix include: <\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\"><li><strong>Smart Visibility <\/strong><strong>\u2013<\/strong> Provides automatic discovery of an organization\u2019s\nassets across AWS, Microsoft Azure and Google Cloud\nPlatform (GCP) environments, via a single console, allowing security teams complete\nvisibility into everything they have in the cloud and to respond and remediate\nsecurity risks in minutes<\/li><li><strong>Continuous Cloud Compliance \u2013<\/strong> Keeps up with\ncontinually changing compliance regulations and best practices policies by\nautomatically detecting changes to cloud environments in near-time<\/li><li><strong>AI-Based Monitoring and Analytics\n<\/strong><strong>\u2013 <\/strong>Shrinks incident\nresponse and resolution times from days or weeks to just minutes. The powerful\nartificial intelligence detects risky resource configurations and suspicious\nnetwork behavior with smart alerts and optional automatic risk remediation<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cMigrating\nseveral petabytes of data and many applications to AWS and Azure made it necessary to\ntransition from a manual to automated process for security monitoring. Sophos Cloud Optix\u2019s multi-cloud security\nand compliance platform capabilities provided real-time cloud workload\nprotection status in seconds. The AI-powered monitoring and alerts helped\nreduce the&nbsp;noise and allowed our teams to focus on delivering value to the\nbusiness,\u201d said Aaron Peck, vice president\nand CISO, Shutterfly, Inc., a Sophos customer,\nbased in Redwood City, Calif. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cOur goal is to provide the most\ncomprehensive and highly-effective cyber security services to all of our\nclients. Whether in technology, manufacturing or utilities, our customers want\nto maximize their investments and protect their data in the cloud. The\npartnership with Sophos and the ability to offer Sophos Cloud Optix is\nimportant to us because it allows us to provide continuous compliance coupled\nwith intelligent cloud visibility and immediate threat response. With Cloud\nOptix, our growing customer-base will have the opportunity to solve the\ntoughest challenges in cloud security,\u201d said Rajeev Khanolkar, president and\nCEO, SecurView Inc., a Sophos partner based in Edison, New\nJersey.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Sophos Cloud Optix leverages AI-powered technology from <a href=\"https:\/\/www.sophos.com\/en-us\/press-office\/press-releases\/2019\/01\/sophos-acquires-avid-secure-to-expand-protection-for-public-cloud-environments.aspx\">Avid Secure<\/a>, which\nSophos acquired in January 2019. Founded in 2017 by a team of highly\ndistinguished leaders in IT security, Avid Secure revolutionized the security\nof public cloud environments by providing effective\nend-to-end protection in cloud services, such as AWS, Azure and Google.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Pricing and\navailability details are available from Sophos partners worldwide.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In the study, more than five million attacks were attempted on the global network of honeypots in the 30-day period, demonstrating how cybercriminals are automatically scanning for weak open cloud buckets.<\/p>\n","protected":false},"author":6,"featured_media":30685,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[15,19,18],"tags":[6695,206],"class_list":["post-34902","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-business","category-headlines","category-white-papers","tag-honeypot","tag-sophos"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/34902","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=34902"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/34902\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/30685"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=34902"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=34902"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=34902"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}